Intruder
Continuous vulnerability scanning and attack-surface monitoring platform built for lean security teams without dedicated SOC staff.
Visit Website ↗ + Add to CompareOverview
Intruder provides continuous external and internal vulnerability scanning, cloud security configuration reviews, and attack-surface monitoring, aimed primarily at small and mid-market organizations that lack a dedicated security operations team. The platform layers automated scanning engines with manual triage from Intruder’s own security researchers, intended to cut down the volume of low-priority findings that make generic scanners hard to act on.
Founded in London in 2015 by Chris Wallis, Intruder built its product around the observation that vulnerability scanners were good at finding issues but poor at helping teams prioritize which ones actually mattered. Its differentiator is that human-verified prioritization layer on top of automated scans, rather than automation alone.
Publicly available funding and revenue figures for Intruder vary significantly across data aggregators, and no major recent funding round or analyst Leader placement was found in this research, suggesting the company remains a smaller, steadily growing player in a crowded vulnerability-management and attack-surface-monitoring category.
Innovation Matrix Assessment
Steady product expansion into cloud security reviews and attack-surface monitoring since 2015, without evidence of a distinct recent acceleration.
Useful for resource-constrained security teams that need prioritized, actionable vulnerability findings rather than a raw scanner output.
No major recent funding round, analyst Leader placement, or large enterprise case study was found; third-party revenue estimates (around $16M ARR) are modest and unverified, so momentum is scored conservatively.
A well-executed but incremental take on vulnerability scanning and attack-surface monitoring rather than a structurally different approach to the problem.
No independent test results or named breach-prevention case studies were found; efficacy claims rest primarily on the vendor's own marketing.
Continuous exposure monitoring for under-resourced teams remains a persistent need, though the space is increasingly crowded.
Why CISOs Should Care
Gives smaller security teams prioritized, human-reviewed vulnerability findings instead of an unfiltered scanner report they don't have staff to triage.
What Makes It Different
Pairs automated scanning with manual analyst triage specifically to reduce noise for teams without a dedicated SOC, rather than competing purely on scan coverage or automation depth.
The Matrix Verdict
50/100 — INCREMENTAL INNOVATOR
An Incremental Innovator at the lower end of the tier: Intruder solves a real, practical problem for lean security teams, but publicly available evidence of funding momentum, analyst recognition or independent efficacy validation is limited compared to category peers.
Editorial Note: Claims vs. Verified Findings
Funding totals reported across data aggregators range from roughly $1.2M to $63M, a discrepancy this profile could not resolve with primary sources; revenue figures are third-party estimates, not company-disclosed.
Sources
Alternatives to Intruder
CybelAngel
External attack surface management and digital risk protection platform that scans the open, deep, and dark web for…
watchTowr
Singapore-based platform combining external attack surface management with continuous automated red teaming to validate whether exposures are actually…
CyCognito
Agentless attack surface management platform that maps organizations' entire external footprint, including subsidiaries and shadow assets, using graph-based…
Armis (a ServiceNow company)
Agentless asset intelligence platform discovering and assessing every connected IT, OT, IoT and medical device, now part of…
Axonius
New York-based CAASM pioneer that aggregates data from hundreds of existing tools to build a unified, agentless asset…
Doppel
San Francisco AI-native digital risk protection platform that detects and automatically takes down phishing sites, impersonation accounts, and…